forked from coop-cloud/traefik
This PR contains the following updates: | Package | Update | Change | |---|---|---| | [traefik](https://github.com/containous/traefik) | patch | `v3.6.7` -> `v3.6.8` | > ❗ **Important** > > Release Notes retrieval for this PR were skipped because no github.com credentials were available. > If you are self-hosted, please see [this instruction](https://github.com/renovatebot/renovate/blob/master/docs/usage/examples/self-hosting.md#githubcom-token-for-release-notes). --- ### Configuration 📅 **Schedule**: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined). 🚦 **Automerge**: Disabled by config. Please merge this manually once you are satisfied. ♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox. 🔕 **Ignore**: Close this PR and you won't be reminded about this update again. --- - [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box --- This PR has been generated by [Renovate Bot](https://github.com/renovatebot/renovate). <!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiI0MS4xNzMuMSIsInVwZGF0ZWRJblZlciI6IjQxLjE3My4xIiwidGFyZ2V0QnJhbmNoIjoibWFzdGVyIiwibGFiZWxzIjpbXX0=--> Reviewed-on: coop-cloud/traefik#89 Reviewed-by: p4u1 <p4u1@noreply.git.coopcloud.tech> Reviewed-by: decentral1se <decentral1se@noreply.git.coopcloud.tech> Co-authored-by: Renovate Bot <renovate@coopcloud.tech> Co-committed-by: Renovate Bot <renovate@coopcloud.tech>
121 lines
3.2 KiB
YAML
121 lines
3.2 KiB
YAML
---
|
|
version: "3.8"
|
|
|
|
services:
|
|
app:
|
|
image: "traefik:v3.6.8"
|
|
# Note(decentral1se): *please do not* add any additional ports here.
|
|
# Doing so could break new installs with port conflicts. Please use
|
|
# the usual `compose.$app.yml` approach for any additional ports
|
|
ports:
|
|
- target: 80
|
|
published: 80
|
|
protocol: tcp
|
|
mode: host
|
|
- target: 443
|
|
published: 443
|
|
protocol: tcp
|
|
mode: host
|
|
volumes:
|
|
- "letsencrypt:/etc/letsencrypt"
|
|
- "file-providers:/etc/traefik/file-providers"
|
|
configs:
|
|
- source: traefik_yml
|
|
target: /etc/traefik/traefik.yml
|
|
- source: file_provider_yml
|
|
target: /etc/traefik/file-provider.yml
|
|
- source: entrypoint
|
|
target: /custom-entrypoint.sh
|
|
mode: 0555
|
|
networks:
|
|
- proxy
|
|
- internal
|
|
environment:
|
|
- DASHBOARD_ENABLED
|
|
- LOG_LEVEL
|
|
- ${LOG_MAX_AGE:-0}
|
|
healthcheck:
|
|
test: ["CMD", "traefik", "healthcheck"]
|
|
interval: 30s
|
|
timeout: 10s
|
|
retries: 10
|
|
start_period: 1m
|
|
command: traefik
|
|
entrypoint: /custom-entrypoint.sh
|
|
deploy:
|
|
endpoint_mode: dnsrr
|
|
update_config:
|
|
failure_action: rollback
|
|
order: stop-first
|
|
labels:
|
|
- "traefik.enable=true"
|
|
- "traefik.http.services.${STACK_NAME}.loadbalancer.server.port=web"
|
|
- "traefik.http.routers.${STACK_NAME}.rule=Host(`${DOMAIN}`)"
|
|
- "traefik.http.routers.${STACK_NAME}.entrypoints=web-secure"
|
|
- "traefik.http.routers.${STACK_NAME}.tls.certresolver=${LETS_ENCRYPT_ENV}"
|
|
- "traefik.http.routers.${STACK_NAME}.service=api@internal"
|
|
- "traefik.http.routers.${STACK_NAME}.middlewares=security@file"
|
|
- "coop-cloud.${STACK_NAME}.version=3.10.0+v3.6.7"
|
|
- "coop-cloud.${STACK_NAME}.timeout=${TIMEOUT}"
|
|
- "backupbot.backup=${ENABLE_BACKUPS:-true}"
|
|
|
|
socket-proxy:
|
|
image: lscr.io/linuxserver/socket-proxy:3.2.10-r0-ls65
|
|
deploy:
|
|
endpoint_mode: dnsrr
|
|
environment:
|
|
- ALLOW_START=0
|
|
- ALLOW_STOP=0
|
|
- ALLOW_RESTARTS=0
|
|
- AUTH=0
|
|
- BUILD=0
|
|
- COMMIT=0
|
|
- CONFIGS=0
|
|
- CONTAINERS=1 # Needs access
|
|
- DISABLE_IPV6=0
|
|
- DISTRIBUTION=0
|
|
- EVENTS=1 # Needs access
|
|
- EXEC=0
|
|
- IMAGES=0
|
|
- INFO=0
|
|
- NETWORKS=1 # Needs access
|
|
- NODES=1
|
|
- PING=1
|
|
- POST=0
|
|
- PLUGINS=0
|
|
- SECRETS=0
|
|
- SERVICES=1 # Needs access
|
|
- SESSION=0
|
|
- SWARM=1
|
|
- SYSTEM=0
|
|
- TASKS=1 # Needs access
|
|
- VERSION=1 # Needs access
|
|
- VOLUMES=0
|
|
volumes:
|
|
- /var/run/docker.sock:/var/run/docker.sock:ro
|
|
networks:
|
|
- internal
|
|
|
|
networks:
|
|
proxy:
|
|
external: true
|
|
internal:
|
|
|
|
configs:
|
|
traefik_yml:
|
|
name: ${STACK_NAME}_traefik_yml_${TRAEFIK_YML_VERSION}
|
|
file: traefik.yml.tmpl
|
|
template_driver: golang
|
|
file_provider_yml:
|
|
name: ${STACK_NAME}_file_provider_yml_${FILE_PROVIDER_YML_VERSION}
|
|
file: file-provider.yml.tmpl
|
|
template_driver: golang
|
|
entrypoint:
|
|
name: ${STACK_NAME}_entrypoint_${ENTRYPOINT_VERSION}
|
|
file: entrypoint.sh.tmpl
|
|
template_driver: golang
|
|
|
|
volumes:
|
|
letsencrypt:
|
|
file-providers:
|